Format string vulnerability in the logging function for the pam_ldap PAM LDAP module before version 144 allows attackers to execute arbitrary code via format strings in the configuration file name.
References
Configurations
Information
Published : 2002-05-28 21:00
Updated : 2016-10-17 19:19
NVD link : CVE-2002-0374
Mitre link : CVE-2002-0374
JSON object : View
CWE
Products Affected
padl_software
- pam_ldap